Jeremy,
I agree with MaxieZ, a combination of SEC and Iptables work nicely in this situation and could be extended to other services like FTP, IMAP, Web authentication, etc. I personally do not feel that security through obscurity by changing the port numbers is a viable solution.

Changing port numbers in this case is not for "security". It's just a simple
solution against automated ssh attacks. If the attack is made by a cracker that
really wants to attack a specific target, he will find the port.

Anyway, I change ports not for security purposes but only for stopping automated
attacks filling up my logs. ;)





--
[email protected] mailing list

Reply via email to